Splunk Search

Time scale format change in timechart

geetanjali
Path Finder

how can i change the format of time in timechart Default format is : March 12th Sat

i need : 3/12/Sat

Tags (1)
0 Karma

alvaromoraes
Path Finder

Yes, you can, read more in http://splunk-base.splunk.com/answers/11649/specify-timestamp-display-format-for-timechart-axis-labe...

For me, Ron Naken tip worked.

Read this for more about date format info: http://docs.splunk.com/Documentation/Splunk/5.0.1/SearchReference/Commontimeformatvariables

Use something like above to get your "3/12/Sat" format:

... | rename _time AS Time | eval Time=strftime(Time, "%m/%d/%A")

I hope this can help you!

0 Karma
Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...